From e4dff78d01dd4c893a055785b08d6c00a68fea79 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Tue, 4 Feb 2025 21:40:05 +0000 Subject: [PATCH] github-actions(deps): bump sigstore/cosign-installer Bumps [sigstore/cosign-installer](https://github.com/sigstore/cosign-installer) from 3.6.0 to 3.8.0. - [Release notes](https://github.com/sigstore/cosign-installer/releases) - [Commits](https://github.com/sigstore/cosign-installer/compare/4959ce089c160fddf62f7b42464195ba1a56d382...c56c2d3e59e4281cc41dea2217323ba5694b171e) --- updated-dependencies: - dependency-name: sigstore/cosign-installer dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] --- security-actions/sign-docker-image/action.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/security-actions/sign-docker-image/action.yml b/security-actions/sign-docker-image/action.yml index 769d6d08..8097127f 100644 --- a/security-actions/sign-docker-image/action.yml +++ b/security-actions/sign-docker-image/action.yml @@ -59,7 +59,7 @@ runs: run: $GITHUB_ACTION_PATH/scripts/cosign-metadata.sh - name: Install Cosign - uses: sigstore/cosign-installer@4959ce089c160fddf62f7b42464195ba1a56d382 + uses: sigstore/cosign-installer@c56c2d3e59e4281cc41dea2217323ba5694b171e - name: Check install! shell: bash